package com.powernode.shop.oauth.config;

import org.springframework.context.annotation.Configuration;
import org.springframework.security.config.annotation.web.builders.HttpSecurity;
import org.springframework.security.oauth2.config.annotation.web.configuration.ResourceServerConfigurerAdapter;

@Configuration
public class ResourceConfig extends ResourceServerConfigurerAdapter {

    @Override
    public void configure(HttpSecurity http) throws Exception {
        http.csrf().disable();
        http.cors().disable();
        http.sessionManagement().disable();
        http.authorizeRequests().antMatchers("/actuator/**")//对admin检测请求不认证
                .permitAll()
                .antMatchers("/instances/**")//对admin检测请求不认证
                .permitAll()
                .anyRequest()
                .authenticated();
    }

}
